Capital One is seeking an experienced and detail-oriented Senior Manager to join their Customer Trust & Field Security team. This role acts as the security expert for sales and business development efforts, ensuring accurate and complete responses to customer security inquiries while influencing product direction and sales strategy.
Responsibilities:
- Customer Trust & Transparency: Scale and build upon existing programs like the Customer Trust Center, providing customers with self-service access to relevant security, privacy, and compliance information
- Customer Engagement: Act as a trusted technical and security advisor, engaging customer security teams and IT leaders to align on their cybersecurity & business needs. Serve as the internal subject matter expert on security for the GTM team, supporting sales and account managers in client-facing discussions and presentations
- Industry Thought Leadership: Represent the company externally in security and technology conversations, shaping best practices and positioning our solutions as industry-leading
- Go-to-Market & Sales Acceleration: Bridge the gap between technical value and business outcomes, aligning security messaging with sales and marketing strategies to drive adoption of our products
- Cross-functional Influence & Collaboration: Work closely with the engineering, legal, risk, cyber, and compliance teams to ensure our security responses are accurate and reflect our latest technical and regulatory standing
- RFI/RFP Response: Analyze and respond to cybersecurity sections of RFIs (Requests for Information) and RFPs (Requests for Proposal), providing detailed and precise information about our security controls, policies, and procedures
- Security Documentation: Maintain and update a knowledge base of our security posture, including security policies, certifications (e.g., SOC 2, ISO 27001), and compliance documentation
- Continuous Improvement: Identify trends in customer security inquiries to help improve our documentation and proactive communication strategies
- Third-Party Risk & Due Diligence: Support third-party risk and due diligence processes, helping customers efficiently evaluate our security posture
- Product Roadmap Contribution: Provide insights on emerging cybersecurity trends and customer expectations to contribute to the product roadmap
- Security Sales Playbook Development: Develop and standardize security sales playbooks, equipping sales teams with messaging, objection handling, and case studies, as applicable
Requirements:
- At least 7 years of experience in a cybersecurity or information security role
- At least 4 years of experience in a customer-facing role, acting as an advisor to senior security and IT leaders
- At least 4 years of experience with cybersecurity principles, data protection, privacy, and compliance frameworks
- At least 2 years of experience in cybersecurity concepts (for example: access control, encryption, network security, and incident response)
- Experience in developing and implementing scalable Customer Trust programs
- 3+ years experience with Third Party Risk Management programs
- Demonstrated ability to influence and collaborate effectively with cross-functional teams
- Strong business acumen and the ability to translate complex technical concepts into business value
- Excellent written and verbal communication skills with the ability to translate complex technical information into clear, concise, and professional responses for both technical and non-technical audiences
- Demonstrated ability to understand security frameworks and best practices, and a focus on horizontal expertise across various domains
- Professional certifications such as CISSP, CISM, CIPP/E, or CompTIA Security+
- Experience with cloud services and cloud technologies (for example: AWS, Microsoft Azure, GCP), cybersecurity technologies, data cloud platforms (for example: Snowflake, Databricks)